0

I came across this during one of my e-trolling sessions.

Enjoy.

I decided to share my 50 favorite links and resources for information security, penetration testing, Linux, programming, cyber warfare and other cyber security related stuffs in this article. The no.1 spot doesn’t really mean it is ranked according to my own judgement and preference but these websites are really my top 50 all time favorite links.

The Exploit Database (EDB) is another good resource for cool archives about exploits and vulnerable software. If you are into inserting dorks in Google, then you might want to check out their Google Hacking Database.

The website is a free information security resource for learning the Metasploit Framework and it’s actuality an effort to promote awareness and raise funds for the underprivileged children in East Africa.

ClubHack Mag is the 1st Indian Hacking Magazine and that their official website is where their free magazines can be downloaded and where recent articles for the current issue are published. What makes them cool is that they provide free information.

BackTrack is one of the most popular pentesting distro and also my favorite distro because of the tools pre-installed on this distribution. I always check their forum site for tutorials and tips about penetration testing.

The official website of the Social Engineering Framework(Art Of Human Hacking). An online resource material for understanding Social Engineering and some of the tools employed by hackers to achieve an attack vector.

Soldierx is an online community of penetration testers, hackers, and programmers. This is where I check out some of the projects of the SoldierX crew, tools, tutorials, hacker information database and many more.

One of the cool websites you should visit is he official website of Thomas Cannon who is an Android Security Researcher, CISSP, CISM, OSCP, CFIP and CSIS industry qualifications. He was responsible for the android data stealing and the No-privilege Android remote shell vulnerabilities.

zx2c4 a.k.a Jason A. Donenfeld is a security researcher who wrote a POC of the Linux Local Privilege Escalation via SUID /proc/pid/mem Write (root exploit for 2.6.39 – 3.0.14 kernels). Jason has some good stuffs in his blog like the Answers to Stripe’s Capture the Flag, wifi-monitong scripts, stunnel interceptor, WEPAutoCrack.py and many more.

The domain may not sound too ethical but no need to worry because it is a safe blog initiated by iSARG Security Group. The blog contains how to conduct penetration tests, ethical hacking, security practices, Linux tutorials and many more.

Eric Romang Blog aka aka wow on ZATAZ.com is a simple yet cool blog about penetration testing wherein they try the new CVE’s using the Metasploit Framework. As of this moment writing this article, their new post is entitled “CVE-2008-5036 VLC Media Player RealText Subtitle Overflow Metasploit Demo”.

/dev/ttyS0 is a blog about embedded systems or devices hacking. Their admin of this blog is from Tactical Network Solutions who wrote reaver which is wps bruteforce tool. The goal of the blog is “to provide the necessary tools, skills, and knowledge to enable professionals, hobbyists, hackers and makers to enter into the world of embedded devices!”

SecurityTube.net is website that contains free training videos about penetration testing, cracking, hacking, etc. which started in 2007. It is where some infosec professionals and enthusiasts share their knowledge by uploading their videos or watching other videos. Vivek Ramachandran is the Founder and Chief Trainer at SecurityTube.net. As of now, SecurityTube is now offering certifications like SecurityTube Metasploit Framework Expert and SecurityTube Wi-Fi Security Expert.

A website about Ethical Hacking, Penetration Testing and Computer Security which basically contains interesting infosec related news, tools and more. For those of you who don’t know, Darknet is also my inspiration on the initiative of improving ProjectX Blog as an international and global information security blog which was first conceptualized by kapitanluffy.

The home page for the Cyber Security video podcast series by Cyber Mike who is a cyber security and information assurance architect by profession, with over 27 years working in engineering, and the last 15 years focused on IA and cyber security. The podcast is about IT cyber security education and not about how to perform cyber attacks and exploits.

ROOTCON is the premier hacking conference in the Philippines and where I started blogging about information security and geeky stuffs. If you want to check the articles I posted there just click this link.

Coresec is an Information Security Blog that deals about penetration testing, vulnerability assessment, security research, web application, tools guide, etc. This is where I check out some new penetration testing guides.

Nothing beats the old school! Nobody messes with the Phrack Magazine which is an online ezine for hackers and by the hackers. Phrack was first released on November 17, 1985 which until now became the largest computer underground ezine. In fact, The Hacker’s Manifesto was also published in this online ezine on the 7th issue. Truly an old yet awesome archive which takes you to the old days of the hacker culture in the 80′s.

r00tsecurity is an online forum site put together by hackers, computer geeks, and tech enthusiasts. Aside from being a forum, r00tsecurityhas has a good online archive for exploits, POC, advisories, scripts, sample programs, ezines, tools, cheat sheets and many more.

Th3 0uTl4wS is not only an online forum community of hackers, crackers, computer geeks, skiddies, infosec enthusiasts, etc. It has an online archive of downloadable tools, honeypots, ezines, ebooks, wordlists, tutorials, botnets, backdoor shells, scripts etc. I advise that you should be careful on the files that you will be downloading too. The website offers free services of their online tools like Md5 Cracker, URL Decoder/Encoder, Base64 Converter, Admin Finder, ASCII Converter, Online photoshop editor, and many more.

The personal website of Dr. Bernd Ulmann from Germay is a collection of his hobbies and projects focused on old computing machinery – especially machines from the former DIGITAL-Equipment-Corporation. This guy is an OpenVMS geek.

SecurityXploded is an Infosec Research and Developmental portal founded on April 2007. The site focuses on Anti-Spyware, Reverse Engineering, Cryptography, Password Recovery, Network security, Forensics, etc. For me, their articles are written and good quality and has a lot of cool tools developed for pentesting, hacking and security. I totally salute the SX team for the Metasploit modules they published.

The site claims to be a for restauration of classic computers, and what can I say.. it truly is a site about my favorite old computer machines especially from DEC or |d|i|g|i|t|a|l|. They have cool articles like Connecting a DECserver to modern Linux, Interfacing with a PDP-11/05, Dealing with Backplanes, DECNet and many more.

The home of Nikto Web Scanner and the place where I check the default usernames and passwords for electronic devices, routers, security appliance and many more. Plus, they have some good tools you might wanna check.